Effective as of May 25, 2018
We have prepared this Privacy Notice to explain how, why, and when we collect data from you to provide targeted advertising services for our clients, and your rights in respect of this data. If you have additional questions, you can also contact us (see the “Contact Us” section below).
Why do we need your personal data?
We need certain personal data in order to deliver the best information to you and provide the best user experience.
Lasio, Inc websites include: pro.lasioinc.com, keratinlounge.com, ny.keratinlounge.com, and pa.keratinlounge.com.
1. About Lasio, Inc Services
Lasio, Inc provides keratin treatments, keratin-infused products, and keratin safe products.
We market and sell products to salon owners, stylists, and sell only after-care products to retail consumers.
To effectively do this, when you visit a website or a mobile application operated by Lasio, Inc or we serve you an ad on a third- party site, we may collect some or all of the data described in this Privacy Notice. Our platform uses that data, as well as other data described below, to help provide ads to you that are more relevant to you.
For example, let’s say you just opened a salon and are in the market for salon professional products. If you visit lasioinc.com website in search of the perfect keratin treatment, but don’t purchase just yet because you are still looking, we may later show you Lasio, Inc ads to encourage you to come back and purchase our keratin products, perhaps even with a discount offer or notice of an upcoming sale. If you gave Lasio, Inc your email address for marketing purposes, we may also serve Lasio, Inc ads to you through other channels, such as by email.
2. What data we collect
Information you provide us
Information about how you use the site
Information about your device or network
Information from third parties
We collect the following categories of information for the purposes explained below.
The minimum amount of information we collect is your email address, a password, and in most cases, your name is required as well.
We may receive your information from third parties that provide services for us in connection with the Sites and Services, and Lasio, Inc may connect this information to your information that we already have.
Beyond the minimum information required to use the Services, we store data that you provide us for the Services. Examples include:
Your contact information (e.g., phone number, physical address, etc.)
Salon information (business name, physical address, phone number, etc.)
For licensed professionals, we store copies of the cosmetology license
Device and software information (e.g., the type of mobile device and associated hardware and software information, the browser used to access our web service, etc.)
Activity on Lasio, Inc Digital Properties: This is data about your browsing activity on Lasio, Inc websites or any future app. For example, which pages you visited and when, what items were clicked on a page, how much time was spent on a page, whether you downloaded a white paper on a business to business website, what items you placed into your online shopping cart, what products were purchased and how much was paid.
Device and browser information: This is technical information about the device or browser you use to access the Lasio, Inc websites. For example, your device’s IP address, cookie string data, operating system, and (in the case of mobile devices) your device type and mobile device’s unique identifier such as the Apple IDFA or Android Advertising ID.
Ad data: This is data about the online ads we have served (or attempted to serve) to you. It includes things like how many times an ad has been served to you, what page the ad appeared on, and whether you clicked on or otherwise interacted with the ad.
Data from Advertising Partners: This is data that we lawfully receive from other digital advertising companies that we work with (“Advertising Partners”) to help us deliver ads to you and recognize you across browsers and devices. This may include pseudonymous advertiser identifiers (meaning identifiers that help identify your browser or device, but do not directly identify you as a person) which some Advertisers or other third party Advertising Platforms choose to share with us – for example, your “Customer ID” with an Advertiser, an identifier (such as a cookie) associated with a hashed version of your email address, or demographic data such as age range. We may work with our Advertisers and Advertising Partners to synchronize their unique, anonymous identifiers to our own to enable us to more accurately recognize a particular unique browser or device and the advertising interests associated with it.
Email from Lasio, Inc: If you choose to share your email address with us, so that (with the help of Advertising Partners) we can serve targeted ads to customers. For example, if you have given Lasio, Inc your email address, Lasio, Inc may send you a promotional email for products you looked at but did not purchase.
Similarly, if you provided your email when you downloaded a white paper, through a third party service we may send you a follow-up email providing you with more information about the company’s products, services, or upcoming events. We do not share email addresses with other third parties for their advertising purposes.
Hashed email addresses: Our Advertising Partners may collect hashed versions of the emails that are entered on Lasio, Inc sites. Hashing is a “one-way function” that effectively pseudonymizes email addresses. For instance, when email@example.com is run through a typical hashing function, it becomes the following string of code: 0F0B7B1A1A7E8BDBBC6AA545F8CCD6F83671B32479271BFCB6CC8498912058D5.
We take this step to de-identify data and protect email addresses, while being able to use an identifier to better connect devices and browsers. We describe how this helps us better provide our services in “How we use the data we collect” below.
3. How we use the data we collect
We use this data to serve ads to you that are more relevant to you. We also use this data to operate, improve and enhance our services including enhancing the data points we or our Advertising Partners have about a particular user, browser, or device to serve the most relevant ads to you and, in turn, improve performance of our ad campaigns. Specifically, we use this data for:
Targeting: Selecting ads that are more likely to be relevant to you based on the interests previously associated with your device and the time of day you may be most interested in viewing these specific ads. For example, we may show you ads for your favorite Lasio products during lunch or commute hours.
Frequency capping: Making sure that you don’t see the same ad too many times.
Sequencing: If you are being served a sequence of ads, making sure we show you the right ad next in the sequence.
Cross-device matching: Identifying all devices that are likely to be associated with you so that ads can be targeted, capped and sequenced across those devices. For example, cross-device matching helps us NOT show you ads for the products you were looking at on your phone but that already purchased on your tablet. Instead we’ll try to show you ads for an upcoming class where you can learn how to put those products to work. It also helps us match devices so we can honor your opt-out choices across all devices we know are connected to the opted-out cookie.
Attribution: Monitoring when, where, and at what price we served certain ads on through our Advertising Partners so that we can measure their influence on the marketing results produced by campaigns and overall marketing strategy. For example, being able to measure if a certain ad campaign (the ads shown and to whom they were shown) actually sold more Lasio products.
Reporting: Providing insights into how our ads are performing and gain insights into our customers. Reporting may include ad metrics such as impressions, clicks, and conversions (for example, “conversion,” may be defined as a sale or a white paper download). For example, if an ad is not performing well (customers aren’t clicking on it), we will be able to see that data and update the ad (perhaps with a better deal!). With respect to specific cookie data, we limit reporting to cookie activity on the specific website you are visiting and which ads were shown whether there was engagement with those ads.
Data is reported in the aggregate for the campaign and, at times, at the cookie level. For some customers, ad metrics are reported at the domain level at the contact level. For some customers, ad metrics such as impressions, clicks, conversions etc. are aggregated at the domain level (the domain representing the Lasio, Inc websites) as well as at the contact level (the individual to whom the ad is being targeted) represented with an email address that was initially provided by the customer.
4. Our legal basis for processing personal data (European Territory Visitors only)
We provide the representations and information in this Section 4 in compliance with European privacy laws, in particular the European General Data Protection Regulation (GDPR). They are specific to persons located in EEA countries or Switzerland, so please don’t rely on the below, if you’re not in one of those countries.
If you are a visitor from the European Territories, our legal basis for collecting and using the personal data described above will depend on the personal information concerned and the specific context in which we collect it. “European Territories” mean the European Economic Area and Switzerland. For the purpose of this Privacy Notice, the term “European Territories” shall continue to include the United Kingdom, even after the United Kingdom leaves the European Economic Area following Brexit.
However, we will normally collect personal data from you where the processing is in our legitimate business interests to, for example, sell our products and fulfill our contractual obligations as a manufacturer.
In some cases, we may collect and process personal data based on consent. To the extent our Advertising Partners need to collect and share, or allow us to facilitate collection and sharing of personal data to enable our services, it is the responsibility of these parties to provide necessary privacy notices and obtain required consent(s).
If you have questions about or need further information concerning the legal basis on which we collect and use your personal information, including if you would like to better understand how our legitimate interests to process your data are balanced against your data protection rights and freedoms, then please contact us using the contact details provided under the “Contact us” heading below.
Finally, please note that when we send our Advertising Partners email addresses to be used for targeted advertising purposes, our Advertising Partners process that data only on behalf of Lasio, Inc. If you have any questions about the use of this data for the purpose of serving targeted advertising to you, please contact us using the contact details provided under the “Contact us” heading below.
5. Data Sharing
We may disclose information about you:
With our service providers: We contract with companies who help with parts of our business operations (e.g., for example, website and data hosting, fraud prevention, viewability reporting, data hygiene, marketing, and email delivery), as well as billing, collections, tech, customer and operational support.
With Advertising Partners: Lasio, Inc may contract with companies who handle data (such as managing our customer lists).
With our subsidiaries and related companies: But they will only process your data for the purposes already explained in this Privacy Notice.
In connection with legal proceedings: When we are under a legal obligation to do so, for example to comply with a binding order of a court, or where disclosure is necessary to exercise, establish or defend the legal rights of Lasio, Inc or any other third party.
To Comply with legal process: To satisfy in good faith any applicable law, legal process, or proper governmental request, such as to respond to a subpoena (whether civil or criminal) or similar process.
To Investigate Wrongdoing and Protect Ourselves or Third Parties: To enforce our Terms of Service or other policies or investigate any potential violation of those Terms and policies, any potential violation of the law, or to protect ourselves, our customers, or any third party from any potential harm (whether tangible or intangible).
In connection with a sale of our business: If a third party acquires some or all of our business or assets, we may disclose your information in connection with the sale (including during due diligence in preparation for the sale).
We also share hashed email addresses (or other pseudonymous identifiers associated with those hashes), technical data that we collect about your browsing habits and your device (such as data relating to our cookies, tracking pixels and similar technologies) with other advertising companies in the digital advertising ecosystem. This enables them and us to better target ads to you.
6. Cookies and related technologies
Our Service uses the following types of cookies for the purposes set out below:
Tracking cookies enable us to identify your device when you move between different Digital Properties so that we can serve targeted advertising to you.
We use two broad categories of cookies: (1) first party cookies, served directly by us to your computer or mobile device, which are used only by us to recognize your computer or mobile device when it revisits our Services; and (2) third party cookies, which are served by service providers on our Services, and can be used by such service providers to recognize your computer or mobile device when it visits other websites.
Essential Cookies: These cookies are essential to provide you with our Services and to enable you to use some of the features. For example, they help the content of the pages you request load quickly. Without these cookies, the services that you have asked for cannot be provided, and we only use these cookies to provide you with those services.
Functionality Cookies: These cookies allow our Services to remember choices you make when you use our Services, such as remembering your language preferences, remembering your login details and remembering the changes you make to other parts of our Services which you can customize. The purpose of these cookies is to provide you with a more personal experience and to avoid you having to re-enter your preferences every time you visit our Services.
Analytics and Performance Cookies: These cookies are used to collect information about traffic to our Services and how users use our Services. The information gathered does not identify any individual visitor. The information is aggregated and anonymous. It includes the number of visitors to our Services, the websites that referred them to our Services, the pages they visited on our Services, what time of day they visited our Services, whether they have visited our Services before, and other similar information. We use this information to help operate our Services more efficiently, to gather broad demographic information and to monitor the level of activity on our Services.
We use Google Analytics for this purpose. Google Analytics uses its own cookies. It is only used to improve how our Services works. You can find out more information about Google Analytics cookies here: https://developers.google.com/analytics/resources/concepts/gaConceptsCookies
You can find out more about how Google protects your information here: www.google.com/analytics/learn/privacy.html.
You can prevent the use of Google Analytics relating to your use of Services by downloading and installing the browser plugin available via this link: http://tools.google.com/dlpage/gaoptout?hl=en-GB
We also use Crazy Egg for analytics. You may opt out of cookies associated with these analytics services by turning off third party cookies for our site in your browser.
Targeted and advertising cookies: These cookies track your browsing habits to enable us to show advertising which is more likely to be of interest to you. These cookies use information about your browsing history to group you with other users who have similar interests. Based on that information, and with our permission, third party advertisers can place cookies to enable them to show ads which may be relevant to your interests while you are on third party websites. We use Adroll for targeting and retargeting ads.
Social Media Cookies: These cookies are used when you share information using a social media sharing button or “like” button on Services or you link your account or engage with our content on or through a social networking website such as Facebook, Twitter, Instagram, or Google+. The social network will record that you have done this.
7. Your choices and opting-out
We recognize how important your online privacy is to you, so we offer the following options for controlling the targeted ads you receive and how we use your data:
You can opt out of receiving personalized ads served by us or on our behalf by clicking on the blue icon that typically appears in the corner of the ads we serve and following the instructions provided or by clicking here. Please note that this “opt out” function is browser-specific and relies on an “opt out cookie”: thus, if you delete your cookies or upgrade your browser after having opted out, you will need to opt out again.
In some cases we may link multiple browsers or devices to you. If you opt out of on a browser or device and we have more linked to you, we will extend your opt out decision to the other linked browsers and devices. Since we only link users across browsers on devices in some conditions, there could be cases where you are still being tracked in a different browser or device we have not linked, and where we are treating you as a different user.
We also adhere to the European Interactive Advertising Digital Alliance (EDAA) guidelines for online advertising and you may opt out via their Your Online Choices website.
Please note that when using the ad industry opt-out tools described above:
If you opt-out your browser may still send us data, for example your IP address. However, we isolate this data and do not use it other than for accounting and, in some cases, for fraud prevention. If you have opted-out on that browser, we do not use this data to personalize ads or to track you.
If you use multiple browsers or devices we will additionally opt out those we have linked to you. Since we may not have all your browsers or devices connected back to your user, you may need to execute this opt out on each browser or device.
To opt out of receiving targeted ads that are based on your behavior across different mobile applications follow the below instructions, for iOS and Android devices:
iOS 7 or Higher: Go to your Settings > Select Privacy > Select Advertising > Enable the “Limit Ad Tracking” setting
For Android devices with OS 2.2 or higher and Google Play Services version 4.0 or higher: Open your Google Settings app > Ads > Enable “Opt out of interest-based advertising”
Opting out will not prevent you from seeing ads, but those ads will likely be less relevant because they won’t be tailored to your interests. The ads might, for instance, be randomly generated or based on the web page you are visiting.
Some internet browsers allow users to send a “Do Not Track” signal to websites they visit. We do not respond to this signal at the present time.
In addition, if you are located in a European Territory you will also have additional data protection rights. These are described under the heading “Additional data protection rights for European Territory residents” below.
If you wish to exercise any of these rights, please contact us using the details below. In your request, please make clear: (i) what personal data is concerned; and (ii) which of the rights you would like to enforce. For your protection, we may only implement requests with respect to the personal data associated with the particular email address that you use to send us your request, and we may need to verify your identity before implementing your request. We will try to comply with your request as soon as reasonably practicable and in any event, within one month of your request. Please note that we may need to retain certain information for recordkeeping purposes and/or to complete any transactions that you began prior to requesting such change or deletion.
Access. You may access the information we hold about you at any time via your account, where applicable, or by contacting us directly through our support site at https://helpme.teamsnap.com
Amend. You can also contact us to update or correct any inaccuracies in your information.
Move. Your personal data is portable – i.e. you to have the flexibility to move your information to other service providers as you wish.
Erase and forget. In certain situations, for example when the information we hold about you is no longer relevant or is incorrect, you can request that we erase your information, by contacting at the information listed below. We retain the right to retain your information for up to 60 days after we process your deletion request.
We may communicate with you at various times, with administrative emails or phone calls, about transactions and service announcements, customer service responses and promotional emails like special offers, newsletters and updates. You can choose to stop receiving promotional emails at any time simply by changing your preferences, unsubscribing through the applicable Sites and Services, or using an email’s unsubscribe function. You may not opt out of receiving administrative messages or customer service responses, unless you delete your Lasio account. If you have agreed to receive marketing communications through interactions with our partners, you must change your communication preferences with them directly.
8. Data retention
We retain personal data we collect directly for targeting purposes for no more than 12 months, after which time we employ measures to delete it. However, for identifiable data that we hold such as email addresses, we will retain until customer asks us to delete it.
Personal data collected for other purposes is held no longer than necessary for our business purposes but is anonymized. For example, we retain anonymized impression and click data to ensure we can meet auditing requirements related to services provided or to meet legal requirements.
We apply technical, administrative and organizational security measures to protect the data we collect against accidental or unlawful destruction and loss, alteration, unauthorized disclosure or access, in particular where the processing involves the transmission of data over a network, and against other unlawful forms of processing.
10. International transfers
We may transfer the information we collect about you to countries (including the United States of America) other than the country where we originally collected it for the purposes of storage and processing of data and operating our services. In general, these countries will be the countries in which we, our Advertising Partners, or our Distribution Partners operate.
Those countries may not have the same data protection laws as your country. However, when we transfer your information to other countries, we will protect that information as described in this Privacy Notice and take steps, where necessary, to ensure that international transfers comply with applicable laws.
For example, when we transfer your information from a European Territory to our parent company in the United States, we do so under the European Commission’s Standard Contractual Clauses. These Standard Contractual Clauses are incorporated in the Lasio, Inc Data Processing Addendum here.
11. Additional data protection rights for EEA residents
If you are a resident of a European Territory, you have the following enhanced rights under EU data protection law:
If you wish to access, correct, update or request deletion of your personal information, you can contact us using the contact details provided under the “Contact us about questions or concerns” heading below.
You can object to the processing of your personal information, ask us to restrict processing of your personal information. Again, you can exercise these rights by contacting us using the contact details provided under the “Contact us about questions or concerns” heading below.
Similarly, if we have collected and possess your personal information with your consent, then you can withdraw your consent at any time. Withdrawing your consent will not affect the lawfulness of any processing we conducted prior to your withdrawal, nor will it affect processing of your personal information conducted in reliance on lawful processing grounds other than consent. Specifically, you can withdraw consent for us or our partners to drop our Lasio, Inc cookie and our partners’ cookies by clicking here or by withdrawing consent for Lasio, Inc when you see a “consent banner” on a publisher or advertiser site which lists Lasio, Inc as a vendor.
You have the right to complain to a data protection authority about our collection and use of your personal information. For more information, please contact your local data protection authority. (Contact details for data protection authorities in the European Territories are available here.) However, if you have any questions about our collection and use of your personal information, please contact us first at firstname.lastname@example.org.
Please note that we have no direct relationship with the individuals whose personal data we possess on behalf of our distribution partners. Where we act as a processor for our distribution partners , you should direct any requests to access, correct, update, or delete your personal data to the respective distribution partner. We will respond to any requests by a client or partner to provide assistance with such requests within 30 days.
12. Children’s privacy
TeamSnap does not knowingly collect information from children under the age of 16. Furthermore, we do not target our service to children under these ages nor do we knowingly communicate with children under 16. When we work with teams and groups with children under 16, the parents/guardians of the children are responsible for entering and managing their children’s information.
13. Changes to this Privacy Notice
Changes to this Privacy Notice will be posted on this page. If we make a material change to our privacy practices, we will provide notice on the site or by other means as appropriate.
If we are required by applicable data protection laws to obtain your consent to any material changes before they come into effect, then we will do so in accordance with law.
14. Contact us about questions or concerns
If you have any questions about this Privacy Notice or our privacy practices, you can contact email@example.com.
7 South 7th Street
Stroudsburg, PA 18360
If you wish to escalate your inquiry after contacting the support team, you are welcome to contact firstname.lastname@example.org.